Sample viewer

vx.netlux.org/Virus.DOS.Tiran.950

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:27:07.889324779Z 48 PC: 12a4a | Get DOS version
2018-12-17T22:27:07.891222697Z 47 PC: 134f6 | Get disk transfer address
2018-12-17T22:27:07.892454445Z 26 PC: 13508 | Set disk transfer address
2018-12-17T22:27:07.893525016Z 78 PC: 13513 | Find first file
2018-12-17T22:27:07.900729698Z 67 PC: 135da | Get or set file attributes
2018-12-17T22:27:07.90823113Z 67 PC: 135d4 | Get or set file attributes
2018-12-17T22:27:07.92492903Z 61 PC: 13532 | Open file (Filename = 'SLEEP.COM')
2018-12-17T22:27:07.932257509Z 63 PC: 1353f | Read file or device (Read 13 bytes on handle 5)
2018-12-17T22:27:07.940200135Z 66 PC: 13552 | Move file pointer
2018-12-17T22:27:07.941989061Z 62 PC: 135a3 | Close file
2018-12-17T22:27:07.944148583Z 67 PC: 135d4 | Get or set file attributes
2018-12-17T22:27:07.955218709Z 79 PC: 135b2 | Find next file
2018-12-17T22:27:07.958233659Z 67 PC: 135da | Get or set file attributes
2018-12-17T22:27:07.965329703Z 67 PC: 135d4 | Get or set file attributes
2018-12-17T22:27:07.976961299Z 61 PC: 13532 | Open file (Filename = 'PRINT.COM')
2018-12-17T22:27:07.984023871Z 63 PC: 1353f | Read file or device (Read 13 bytes on handle 5)
2018-12-17T22:27:07.990776545Z 66 PC: 13552 | Move file pointer
2018-12-17T22:27:07.993030753Z 62 PC: 135a3 | Close file
2018-12-17T22:27:07.99530607Z 67 PC: 135d4 | Get or set file attributes
2018-12-17T22:27:08.006102579Z 79 PC: 135b2 | Find next file
2018-12-17T22:27:08.016022287Z 67 PC: 135da | Get or set file attributes
2018-12-17T22:27:08.022315583Z 67 PC: 135d4 | Get or set file attributes
2018-12-17T22:27:08.033569582Z 61 PC: 13532 | Open file (Filename = 'HELLO.COM')
2018-12-17T22:27:08.041800985Z 63 PC: 1353f | Read file or device (Read 13 bytes on handle 5)
2018-12-17T22:27:08.04863166Z 66 PC: 13552 | Move file pointer
2018-12-17T22:27:08.050307893Z 62 PC: 135a3 | Close file
2018-12-17T22:27:08.060596709Z 67 PC: 135d4 | Get or set file attributes
2018-12-17T22:27:08.07152631Z 79 PC: 135b2 | Find next file
2018-12-17T22:27:08.074429612Z 67 PC: 135da | Get or set file attributes
2018-12-17T22:27:08.080623037Z 67 PC: 135d4 | Get or set file attributes
2018-12-17T22:27:08.091627954Z 61 PC: 13532 | Open file (Filename = 'PHANG.COM')
2018-12-17T22:27:08.106578719Z 63 PC: 1353f | Read file or device (Read 13 bytes on handle 5)
2018-12-17T22:27:08.119652357Z 66 PC: 13552 | Move file pointer
2018-12-17T22:27:08.122412976Z 62 PC: 135a3 | Close file
2018-12-17T22:27:08.124451198Z 67 PC: 135d4 | Get or set file attributes
2018-12-17T22:27:08.136166337Z 79 PC: 135b2 | Find next file
2018-12-17T22:27:08.140087549Z 67 PC: 135da | Get or set file attributes
2018-12-17T22:27:08.146481434Z 67 PC: 135d4 | Get or set file attributes
2018-12-17T22:27:08.157228361Z 61 PC: 13532 | Open file (Filename = 'PRINTA~1.COM')
2018-12-17T22:27:08.166009821Z 63 PC: 1353f | Read file or device (Read 13 bytes on handle 5)
2018-12-17T22:27:08.173686741Z 66 PC: 13552 | Move file pointer
2018-12-17T22:27:08.175325552Z 62 PC: 135a3 | Close file
2018-12-17T22:27:08.178322662Z 67 PC: 135d4 | Get or set file attributes
2018-12-17T22:27:08.190585574Z 79 PC: 135b2 | Find next file
2018-12-17T22:27:08.194145906Z 67 PC: 135da | Get or set file attributes
2018-12-17T22:27:08.201598049Z 67 PC: 135d4 | Get or set file attributes
2018-12-17T22:27:08.214076759Z 61 PC: 13532 | Open file (Filename = 'MANDEL.COM')
2018-12-17T22:27:08.222115825Z 63 PC: 1353f | Read file or device (Read 13 bytes on handle 5)
2018-12-17T22:27:08.230953142Z 66 PC: 13552 | Move file pointer
2018-12-17T22:27:08.232955918Z 62 PC: 135a3 | Close file
2018-12-17T22:27:08.235198624Z 67 PC: 135d4 | Get or set file attributes
2018-12-17T22:27:08.246221585Z 79 PC: 135b2 | Find next file
2018-12-17T22:27:08.249974837Z 67 PC: 135da | Get or set file attributes
2018-12-17T22:27:08.256201757Z 67 PC: 135d4 | Get or set file attributes
2018-12-17T22:27:08.267567854Z 61 PC: 13532 | Open file (Filename = 'PAH.COM')
2018-12-17T22:27:08.275685871Z 63 PC: 1353f | Read file or device (Read 13 bytes on handle 5)
2018-12-17T22:27:08.283051954Z 66 PC: 13552 | Move file pointer
2018-12-17T22:27:08.284984437Z 62 PC: 135a3 | Close file
2018-12-17T22:27:08.287516197Z 67 PC: 135d4 | Get or set file attributes
2018-12-17T22:27:08.302327863Z 79 PC: 135b2 | Find next file
2018-12-17T22:27:08.305561298Z 67 PC: 135da | Get or set file attributes
2018-12-17T22:27:08.313402094Z 67 PC: 135d4 | Get or set file attributes
2018-12-17T22:27:08.324796232Z 61 PC: 13532 | Open file (Filename = 'TEST.COM')
2018-12-17T22:27:08.335020136Z 63 PC: 1353f | Read file or device (Read 13 bytes on handle 5)
2018-12-17T22:27:08.344811095Z 62 PC: 135a3 | Close file
2018-12-17T22:27:08.347109557Z 67 PC: 135d4 | Get or set file attributes
2018-12-17T22:27:08.358973605Z 79 PC: 135b2 | Find next file
2018-12-17T22:27:08.361745189Z 26 PC: 135c6 | Set disk transfer address
2018-12-17T22:27:08.364350985Z 9 PC: 12a86 | Display string (String= 'Goat file (COM/....). Size=00000834h/0000002100d bytes. ')
2018-12-17T22:27:08.370813606Z 48 PC: 12a8f | Get DOS version
2018-12-17T22:27:08.372559642Z 61 PC: 12b5c | Open file (Filename = '')
2018-12-17T22:27:08.381726029Z 93 PC: 12afe | File sharing functions
2018-12-17T22:27:08.384127075Z 9 PC: 12a86 | Display string (String= 'Size change=03B6h/00950d. ')
2018-12-17T22:27:08.388725755Z 76 PC: 12ae3 | Terminate with return code (Return code = '1')